
Cybersecurity Compliance, Technical Controls Consultant
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Jordan.
• Evaluate and confirm the implementation and effectiveness of cybersecurity controls in relation to regulatory standards, security frameworks, MBSS, and approved configuration baselines.
• Perform regular and on-demand technical and regulatory compliance evaluations for critical assets.
• Assess security controls and propose remediation or enhancement strategies.
• Oversee the collection of compliance evidence, documentation, and repositories for audits, assessments, and regulatory submissions.
• Assist with internal and external audits, remediation of findings, and tracking of corrective actions.
• Facilitate cybersecurity risk assessments and manage regulatory and compliance risks.
• Help in the development and monitoring of compliance-related Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs).
• Create technical compliance reports, dashboards, and metrics for management and regulatory stakeholders.
• Develop, maintain, and evaluate cybersecurity policies, standards, procedures, and controls.
• Keep track of updates to regulatory and MBSS requirements and implement new compliance obligations.
• Convey technical and regulatory requirements to both technical and non-technical stakeholders.
• Carry out compliance evaluations of firewall rules, internet-facing systems, cloud services, and SIEM security monitoring controls.
• Confirm adherence to secure configuration baselines and hardening standards for servers, databases, operating systems, and network devices.
• Assess backup, disaster recovery, and business continuity controls.
• Review application security controls for compliance with the Secure Software Development Lifecycle (SSDLC).
• Analyze results from vulnerability assessments and penetration testing, and monitor remediation efforts.
• 8–10 years of relevant experience.
• Proficiency in both Arabic and English, written and spoken.
• Experience in conducting technical cybersecurity compliance assessments aligned with regulatory requirements, security frameworks, and MBSS.
• Capability to evaluate the implementation and effectiveness of security controls, document deficiencies, and suggest remediation strategies.
• Familiarity with reviewing secure configuration baselines and golden images for servers and endpoints.
• Knowledge of hardening standards applicable to databases, operating systems, and network devices.
• Experience in assessing firewall rules, internet-facing systems, cloud services, and security monitoring controls, including SIEM.
• Understanding of application security and Secure Software Development Lifecycle (SSDLC) requirements.
• Ability to review results from vulnerability assessments and penetration testing, tracking compliance gaps until resolved.
• Experience in evaluating backup, disaster recovery, and business continuity measures.
• Proficient in managing compliance evidence, supporting audits, addressing findings, and tracking corrective actions.
• Competent in developing or maintaining cybersecurity policies, standards, procedures, dashboards, KPIs, and KRIs.
• Engagement in a 2-year project.
• Access to the Global Consulting Bootcamp.
• Membership to the MC Club.
Reli Group
Second Nature
ASRC Federal
Kyndryl
Get handpicked remote jobs straight to your inbox weekly.